r/MachineLearning • u/Saad_ahmed04 • 10d ago
Project Implementing Watermarking for Language Models [P]
I recently implemented a minimal, educational version of SynthID-Text-style watermarking for language models.
I saw anthropic post about how they'll start adding watermarks to their model responses and it made me very curious as to how they'll do it and what do they even mean by watermark here. Like will we start getting random ads or something in the middle of model responses or what.
Then decided to read their article and found out that watermark is not a visible message at all. It is a subtle statistical pattern introduced while the model chooses its tokens.
My implementation is not an exact reproduction of the original SynthID-Text system. I simplified or implemented a few components differently to keep the project understandable, but the main idea is there I think.
Github: https://github.com/Saad1926Q/llm-watermark
If you find it interesting then you may star the repo !!
9
u/Lopsided-Bridge-9810 10d ago edited 9d ago
Reliable watermarking for linguistically based inferencing is not possible, imo. You can feed the output to multiple other llms that don't watermark and ask to have text rewritten a certain way, you can translate the text to other languages and translate back and the entire statistic signature gets lost. Linguistic styled can be targeted and attacked. There is no watermarking happening in text based llms anytime soon. I mean labs can watermark but it's a nonsense approach.